All of lore.kernel.org
 help / color / mirror / Atom feed
* Announce: SELinux conditional policy extensions
@ 2003-12-22 22:47 Karl MacMillan
  2004-02-13  1:22 ` Joshua D. Guttman
  0 siblings, 1 reply; 14+ messages in thread
From: Karl MacMillan @ 2003-12-22 22:47 UTC (permalink / raw)
  To: SELinux List

A new release of the conditional policy extensions to SELinux is
available from our website:

http://www.tresys.com/selinux/index.html

The conditional policy extensions to SELinux allow runtime modification
of the security policy without having to load a new policy. Using
boolean variables and expressions, it is possible to define sections of
policy that are conditionally applied. Please see the website for more
information.

This release includes modifications to the linux kernel, checkpolicy,
and libselinux and allows the creation and loading of conditional
policies. We have done internal testing, but this release is not ready
for production use. In particular, the selinuxfs modifications are new
and have had only minimal testing.

There are several known deficiencies with this release that we will
address:

- The selinuxfs additions need review, cleanup, and testing.
- Fine-grained labeling of selinuxfs has not been implemented yet.
- The policy has not yet been modified to take advantage of the new
language features.

-- 
Karl MacMillan
Tresys Technology
kmacmillan@tresys.com
http://www.tresys.com
(410) 290-1411 x134


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 14+ messages in thread

end of thread, other threads:[~2004-02-20 15:14 UTC | newest]

Thread overview: 14+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-12-22 22:47 Announce: SELinux conditional policy extensions Karl MacMillan
2004-02-13  1:22 ` Joshua D. Guttman
2004-02-13  5:19   ` Colin Walters
2004-02-13 14:43     ` Stephen Smalley
2004-02-13 19:24     ` Frank Mayer
2004-02-13 19:14   ` Frank Mayer
2004-02-14  3:51     ` Russell Coker
2004-02-20 13:05       ` John D. Ramsdell
2004-02-20 13:23         ` Stephen Smalley
2004-02-20 14:46         ` Frank Mayer
2004-02-20 15:14           ` John D. Ramsdell
2004-02-16 21:20     ` Joshua D. Guttman
2004-02-17  1:50       ` Frank Mayer
2004-02-20 11:21     ` Announce: Slat 1.1.0 with policy deconditionalizer John D. Ramsdell

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.